nicholasjackson / cnitchLinks
Container Snitch checks running processes under the Docker Engine and alerts if any are found to be running as root
☆77Updated 8 years ago
Alternatives and similar repositories for cnitch
Users that are interested in cnitch are comparing it to the libraries listed below
Sorting:
- The Container Security Book—a free book for practitioners☆82Updated 5 years ago
- Kubernetes security scanner based on the open-source container vulnerability scanner Trivy.☆23Updated 5 years ago
- ⛔️ DEPRECATED Kubernetes operator and CLI tool for encrypting and managing Kubernetes secrets☆65Updated last year
- A proxy for docker.sock that enforces access control and isolated privileges☆145Updated 4 years ago
- ☆56Updated 7 years ago
- An actuary is a business professional who analyzes the financial consequences of risk.☆81Updated 8 years ago
- Docker authentication plugin to enforce a image pull policy. Whitelist Docker images allowed to be pulled.☆42Updated 7 years ago
- Bash wrapper script for Aquasec Microscanner☆61Updated 5 years ago
- Web Application Firewall (WAF) on Kubernetes☆69Updated 4 years ago
- Falco container runtime security extras (default rulesets and more)☆49Updated 6 years ago
- Use Manifesto to store and query metadata for container images.☆163Updated 6 years ago
- A Kubernetes implementation in bash (srsly)☆17Updated 8 years ago
- A @HashiCorp Vault plugin for authenticating and receiving policies via Slack.☆50Updated 5 years ago
- Kubernetes security and vulnerability tools and utilities.☆58Updated 4 years ago
- Because Clair needs a friend☆31Updated 6 years ago
- Kernel assisted microcontainer packer☆24Updated 6 years ago
- A Dockerfile that creates an image with known vulnerabilities.☆50Updated 3 years ago
- Kubernetes Common Configuration Scoring System☆122Updated 3 years ago
- Shell wrapper to run a login shell with `sudo` as the current user for the purpose of audit logging☆95Updated 3 years ago
- A tool to pass Vault secrets to other processes via environment variables.☆33Updated 6 years ago
- Automate the initialization and unsealing of HashiCorp Vault on Google Cloud Platform.☆148Updated 6 years ago
- Container Security Workshop covering using Falco on Kubernetes.☆106Updated 4 years ago
- Kubernetes operator for Falco that allows developers to manage rules for detecting intruders and backdoors☆68Updated 5 years ago
- A magic shim for Docker credential helpers 🪄☆72Updated 3 years ago
- kurl: curl for Kubernetes☆38Updated 8 years ago
- ☆12Updated 5 years ago
- A GitHub App that uses kubeval to validate all of that Kubernetes YAML in your repo☆94Updated 3 years ago
- Simplifying Seccomp enforcement in containerized or non-containerized apps☆112Updated 5 years ago
- API that leverages Clair to scan Docker Registries and Kubernetes Clusters for vulnerabilities☆151Updated 2 years ago
- Vulnerability Scanner for Detecting Publicly Disclosed Vulnerabilities in Application Dependencies☆23Updated 6 years ago